#!

###########################
# Log Settings 
###########################
config log setting
set resolve-ip enable 
set resolve-port enable 
set log-user-in-upper  disable 
set fwpolicy-implicit-log enable 
set fwpolicy6-implicit-log disable 
set log-invalid-packet disable 
set local-in-allow enable 
set local-in-deny-unicast disable 
set local-in-deny-broadcast disable 
set local-out disable 
set daemon-log disable 
set neighbor-event disable 
set brief-traffic-format disable 
set user-anonymize disable 
end
###########################
# Log Settings Gui
###########################
config log gui-display
set resolve-hosts enable 
set resolve-apps enable 
set fortiview-unscanned-apps enable
set fortiview-local-traffic enable 
set location memory 
end
###########################
# Log Settings Device FortiAnalyzer
###########################
config log fortianalyzer setting
set status enable 
set ips-archive  enable 
set server 4.4.4.4
set enc-algorithm default
set localid mydomain1-sg0e0
# set psksecret only4mydomain1!
set conn-timeout 10
set monitor-keepalive-period 5
set monitor-failure-retry-period 5
set source-ip 0.0.0.0
set upload-option realtime 
set reliabl enable
end
config log fortianalyzer filter
set severity information 
set forward-traffic enable 
set local-traffic enable 
set multicast-traffic enable 
set sniffer-traffic enable 
set anomaly enable 
set netscan-discovery enable 
set netscan-vulnerability enable 
set voip enable 
set dlp-archive enable
end
###########################
# Log Settings Device Memory
###########################
config log memory setting
set status enable
set diskfull overwrite
end
#
# If memory log is used set max-size as
# warning threshold.
#
# For "max-size" value "bytes" are used.
#
# config log memory global-setting 
# set max-size 65536
# set full-final-warning-threshold 95
# set full-first-warning-threshold 75
# set full-second-warning-threshold 90
# end
config log memory filter 
set severity information 
set forward-traffic enable 
set local-traffic enable 
set multicast-traffic enable 
set sniffer-traffic enable 
set anomaly enable 
set netscan-discovery enable 
set netscan-vulnerability enable 
set voip enable 
#set dlp-archive enable
end
###########################
# Log Settings Device Syslog
###########################
config log syslogd setting
set status disable
# set server 0.0.0.0 
# set reliable disable 
# set port 514
# set csv disable 
# set facility local0 
end
config log syslogd filter 
set severity information 
set forward-traffic enable 
set local-traffic enable 
set multicast-traffic enable 
set sniffer-traffic enable 
set anomaly enable 
set netscan-discovery enable 
set netscan-vulnerability enable 
set voip enable 
end
###########################
# Log Settings Device FortiGuard
###########################
#
# Disable fortiguard log because
# forticloud is not in use. 
#
# To enable fortiguard log ID of 
# forticloud is needed.
#
config log fortiguard setting
set status disable
end
###########################
# Log Settings Eventfilter
###########################
config log eventfilter
set event enable
set router enable
set vpn enable
set user enable
set router enable
set wireless-activity enable
set wan-opt enable
set endpoint enable
set ha enable
end
###########################
# Log Settings threat-weight
###########################
config log threat-weight
set status enable
end
